#GDPR Quick checklist for your preparations…keep calm and carry on
News and information from the Advent IM team.
You cannot fail to have noticed that GDPR is imminent. We thought it might be helpful to offer you a quick look at where you need to be at this stage in the pre-GDPR game.
Do you have an information asset register?
Have you begun to implement Data Protection Privacy Impact Assessments?
Hows your privacy statement looking?
Is your Subject Access Request process clearly signposted?
Have you begun to document ‘how’ you comply with GDPR?
Are senior management fully trained and aware of the part they play in ensuring ongoing compliance?
Should (when) you be breached can you evidence appropriate security controls were in place?
Do you have an effective incident reporting and management plan to ensure proper reporting to the correct authorities
Have you implemented an effective no blame near miss reporting process?
Remember GDPR isn’t a project. It requires a permanent change of culture.
You must be investing in quality staff training now.